Firewall question...

Subsonic

New member
Pro User
VIP
Local time
2:31 PM
Messages
259
Location
Virginia, USA
I've tried two free firewalls for Windows7. Windows7 Firewall Control and Privatefirewall 6.1. When I do a Shields up scan with Gibson (www.grc.com), both of these report that port 23 (telnet) is open. Is this normal? I have'nt used it for a long time, but if I remember correctly, when I used Zone Alarm pro with XP, GRC would report true stealth on all ports.
 

My Computer

Computer Manufacturer/Model Number
Dell / Studio xps
OS
Windows7 x64 7600 16385
CPU
Intel I7 920
Motherboard
Dell
Memory
6GB DDR3
Graphics Card(s)
ATI Radeon HD4350
Sound Card
Integrated 7.1 channel
Hard Drives
Hitachi HDT721064SLA360 (596 GB)
Keyboard
Logitech EX110
Mouse
Logitech LX8
can you explain your problem with some more details and may i know the reason for using such external firewalls while 7's FW is quite strong n AVG's is the best i think.



plz reply
 

My Computer

Computer Manufacturer/Model Number
self build/assembled
OS
windows 7 rtm ultimate build 7600 x86
CPU
intel pentium 4 HT 3GHz
Motherboard
intel 945 GZ Micro 775 SE
Memory
1 gb transcend 667 Mhz
Graphics Card(s)
Nvidea 8400 GS 512 MB
Sound Card
realtek inbuild
Monitor(s) Displays
23" samsung syncmaster P2370MS full HD 1080p
Screen Resolution
1920x1080
Hard Drives
hitachi 160gb sata+Samsung 500gb sata
PSU
Zebronics 450W
Case
trendsonic
Cooling
two extra fans taken from damaged PSUs
Keyboard
Microsoft
Mouse
Microsoft
Internet Speed
512Kbps
I believe port 23 is for telnet.

Edit..

Google just confirmed that port 23 is for telnet. So no worries there for you :)
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
DELL VOSTRO 3650
OS
Windows 8.1 PRO
CPU
3rd Generation Intel Core i7‐3612QM CPU @ 2.10GHZ
Memory
8GB DDR3
Graphics Card(s)
NVIDIA GeForce GT 525M (128 bit), 1GB Grpahics
Screen Resolution
1920X1080
Hard Drives
750GB 5400RPM
I've tried two free firewalls for Windows7. Windows7 Firewall Control and Privatefirewall 6.1. When I do a Shields up scan with Gibson (www.grc.com), both of these report that port 23 (telnet) is open. Is this normal? I have'nt used it for a long time, but if I remember correctly, when I used Zone Alarm pro with XP, GRC would report true stealth on all ports.

Telnet should definately not be open. its one of the easiest way to gain access to a remote computer. All you have to do is type "helo" and it will tell you abt the system.

ZAP, ESET, both stealth all ports on GRC. You have a realtime virus checker runnning?

Ken
 

My Computer

Computer Manufacturer/Model Number
HP Pavillion dv-7 1005 Tx
OS
Win 8 Release candidate 8400
CPU
[email protected]
Memory
4 gigs
Graphics Card(s)
Nvidia 9600M
Sound Card
HD built-in
Monitor(s) Displays
17" Wxga
Screen Resolution
1440x900
Cooling
none
Internet Speed
45Mb down 5Mb up
Telnet should definately not be open. its one of the easiest way to gain access to a remote computer.

You lost me a bit here zig.. >.<

Do you mean to say that the avg user should not have it open?
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
DELL VOSTRO 3650
OS
Windows 8.1 PRO
CPU
3rd Generation Intel Core i7‐3612QM CPU @ 2.10GHZ
Memory
8GB DDR3
Graphics Card(s)
NVIDIA GeForce GT 525M (128 bit), 1GB Grpahics
Screen Resolution
1920X1080
Hard Drives
750GB 5400RPM
can you explain your problem with some more details and may i know the reason for using such external firewalls while 7's FW is quite strong n AVG's is the best i think.

plz reply

I thought 7's FW was quite adequate as well. I use Windows7 Firewall control along with 7's FW as its built to be compatible and eases the set up of the 7 FW. But I was VERY surprised to see GRC say that port 23 was open even with the 7 FW running. I don't think that's good. I may go back and try ZA free since the newest version seems to indicate that it plays nicely with Windows 7.
 

My Computer

Computer Manufacturer/Model Number
Dell / Studio xps
OS
Windows7 x64 7600 16385
CPU
Intel I7 920
Motherboard
Dell
Memory
6GB DDR3
Graphics Card(s)
ATI Radeon HD4350
Sound Card
Integrated 7.1 channel
Hard Drives
Hitachi HDT721064SLA360 (596 GB)
Keyboard
Logitech EX110
Mouse
Logitech LX8
I agree with Ken on this one... its like hanging a neon sign on your front door.. "Not home .. Come on in" I use MSE and score a True Stealth on GRC.com btw..
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
LENOVO K450 @3.0GHZ
OS
64-bit Windows 8.1 Pro
CPU
Core(TM) i5 CPU 4330 Haswell @ 3.20GHz
Motherboard
LENOVO
Memory
12.00 GB
Graphics Card(s)
Intel(R) HD Graphics
Sound Card
Intel HD integtrated
Monitor(s) Displays
HP 25' ISP Monitor
Screen Resolution
1900/1020
Hard Drives
(1) ST1000DM003-1CH162 (2) Generic STORAGE DEVICE USB Device (3) Generic STORAGE DEVICE USB Device
Internet Speed
100mb down/10mb up
No reason to have it open. Its not even included in the OS anymore. telnet is a bi-directional com that is easily hackable. Google it and hacking and you'll you see. We make sure FTP is closed, and you wouldn't think of leaving remote desktop without a password so too with telnet.

Ken
 

My Computer

Computer Manufacturer/Model Number
HP Pavillion dv-7 1005 Tx
OS
Win 8 Release candidate 8400
CPU
[email protected]
Memory
4 gigs
Graphics Card(s)
Nvidia 9600M
Sound Card
HD built-in
Monitor(s) Displays
17" Wxga
Screen Resolution
1440x900
Cooling
none
Internet Speed
45Mb down 5Mb up
ZAP, ESET, both stealth all ports on GRC. You have a realtime virus checker runnning?

Ken

Hi Ken!

I'm using MSE currently (although there is a new beta version of AVAST 5 that has come out that looks like it fixes alot of problems with the first beta that I might try). I was toying with giving Norton Internet Secuity 9 a go (something I didn't think you'd ever see me say after all the days of Symantec "bloatware") but they want $60 for it and I HATE having to pay for a AV/FW YEARLY! May give ZA free a go.
 

My Computer

Computer Manufacturer/Model Number
Dell / Studio xps
OS
Windows7 x64 7600 16385
CPU
Intel I7 920
Motherboard
Dell
Memory
6GB DDR3
Graphics Card(s)
ATI Radeon HD4350
Sound Card
Integrated 7.1 channel
Hard Drives
Hitachi HDT721064SLA360 (596 GB)
Keyboard
Logitech EX110
Mouse
Logitech LX8
If you want to have real protection(firewall in this case) you need to use a paid software, not the free ones or worse Windows firewall.
 

My Computer

Computer Manufacturer/Model Number
MasterB/Custom
OS
Windows 7 Professional x64
CPU
QuadCore AMD Phenom II X4 Black Edition 955 3.2 GHz
Motherboard
Asus M4A785TD-V Evo
Memory
8 GB Crucial DDR3
Graphics Card(s)
SAPPHIRE Radeon HD 4890 1GB HDMI New Edition
Sound Card
VIA VT1708S HD Audio 7.1 onboard/ ATI HDMI video card
Monitor(s) Displays
Acer H233H 23'' LCD HDMI
Screen Resolution
1920x1080
Hard Drives
1x 500GB and 1x 1TB 7200RPM 32MB Cache WD Caviar Black
PSU
CORSAIR CMPSU-620HX 620W
Case
COOLER MASTER Storm Scout SGC-2000
Cooling
2x 140mm and 1x 120mm case fans, Stock CPU fan
Keyboard
Logitech MX 3200
Mouse
Logitech MX 3200
Internet Speed
15 Mbps
Other Info
My first build!
Interesting (grc.com). I tried ShieldsUP! With or without ThreatFire enabled, ESET Smart Security passed all of the tests and was in true stealth mode.

I then downloaded and ran LeakTest.exe. With ThreatFire running, TF blocked it and allowed me to even kill the process and quarantine it. ESS didn't do anything and completely allowed it through with TF suspended for testing purposes. :shock:
 

My Computer

Computer Manufacturer/Model Number
HP
OS
Windows 7 Home Premium 64-bit
CPU
Intel Core2 Quad Q6600 @ 2.40 Ghz
Memory
8GB RAM
Graphics Card(s)
ATI Radeon HD 4600
Monitor(s) Displays
HP w2007
Screen Resolution
1680 x 1050
Hard Drives
700 GB
I use Comodo Firewall and have just retested this new install (Official RTM) 100% pass In and Out with comments such as this ...

reddash.gif
[FONT=Verdana,Arial,Helvetica,Sans-Serif,MS Sans Serif][SIZE=+0]Your Internet port 139 does not appear to exist!
[SIZE=-1]One or more ports on this system are operating in FULL STEALTH MODE! Standard Internet behavior requires port connection attempts to be answered with a success or refusal response. Therefore, only an attempt to connect to a nonexistent computer results in no response of either kind. But YOUR computer has DELIBERATELY CHOSEN NOT TO RESPOND (that's very cool!) which represents advanced computer and port stealthing capabilities. A machine configured in this fashion is well hardened to Internet NetBIOS attack and intrusion.
[/SIZE]
[/SIZE][/FONT]
reddash.gif
[FONT=Verdana,Arial,Helvetica,Sans-Serif,MS Sans Serif][SIZE=+0]Unable to connect with NetBIOS to your computer.
[SIZE=-1]All attempts to get any information from your computer have FAILED. (This is very uncommon for a Windows networking-based PC.) Relative to vulnerabilities from Windows networking, this computer appears to be VERY SECURE since it is NOT exposing ANY of its internal NetBIOS networking protocol over the Internet.[/SIZE]
[/SIZE][/FONT]
I do get one fail that i expect I have the Ping port open at the moment on the Router

The price for this type of security FREE :D

AntiVirus and SSL Certificates - Internet Security Software | Comodo if you want to try it yourself
 

My Computers

System One System Two

  • Computer type
    PC/Desktop
    Computer Manufacturer/Model Number
    ChillBlast - Custom to my design
    OS
    Windows 11 Pro x64 [Latest Release and Release Preview]
    CPU
    Ryzen 9 5950X, 3.8 - 5.2 MHz
    Motherboard
    Asus Prime X570-Pro
    Memory
    64GB [2 x 32GB] DDR4 3200MHz
    Graphics Card(s)
    4GB NVIDIA GEFORCE GTX 1650 Ti
    Sound Card
    On-board SPDIF to 5.1 System + HDMI [5.1 system]
    Monitor(s) Displays
    32" UHD 32 Bit HDR Monitor + 43" UHD 4K 32Bit HDR TV
    Screen Resolution
    2 x 3840 x 2160 @60Hz
    Hard Drives
    1TB M2 SSD OS, 500GB Fast Access SSD, 2 x 8TB Data + Various Externals from 1TB to 4TB, 10TB NAS
    PSU
    NZXT C750 80 PLUS Gold 750W Modular PSU
    Case
    Workstation Case [Matt Black]
    Cooling
    NZXT Kraken X63 280mm CPU Cooler +2x Quiet Case fans
    Keyboard
    Logitech Wireless MX Keys & K400 + others
    Mouse
    Logitech Wireless MX Master 3S
    Internet Speed
    920 MB Down 50 MB Up
    Antivirus
    BitDefender Total Security Pro
    Browser
    Chrome (always run latest Non-Beta)
    Other Info
    Also run ...
    Laptop - Quad 8GB - Windows 10 Pro x64
    Nexus 7 Android tablet x2
    Samsung 10.2" tablet
    Blackview TAB 8 4G Android Tablet c/w Keyboard
    Wacom Intuos Pro Medium Pen Pad
    Wacom Intuos Pro Small Pen Pad
    Wacom Expresskeys Remote
    Loopdeck+ Graphics Controller
    Shuttle Pro v2 Control
  • Computer type
    Laptop
    System Manufacturer/Model Number
    Dell XPS 17 10750H
    OS
    Windows 11 Pro x64 Latest RP
    CPU
    Intel I7 10750H 5.0GHz
    Motherboard
    Dell XPS
    Memory
    32GB [2x16GB] DDR4 2933 MHz
    Graphics Card(s)
    nVidia GTX1650Ti 4 GB GDDR6
    Sound Card
    Stock [Realtek] 4 Speaker
    Monitor(s) Displays
    17" IPS UHD+ Infinity Edge Touchscreen
    Screen Resolution
    3840 x 2400
    Hard Drives
    2TB M2 NVMe, 4TB External + various 500GB & 1TB External NVMe (also have access to spinner HDD from
    PSU
    Stock
    Case
    Stock XPS Aluminium & Carbon Fibre
    Cooling
    Stock - Active Fan Control
    Keyboard
    Backlit + Various Logitech
    Mouse
    Stock Track Pad + Logitech MX Trackball
    Internet Speed
    72 MB Down 18MB Up
    Browser
    Chrome
    Other Info
    Also run ...
    Laptop - Quad 8GB - Windows 10 Pro x64
    Nexus 7 Android tablet x2
    10.2" tablet
    Sony Z3 Android Smartphone
    Wacom Intuos Pro Medium Pen Pad
    Wacom Intuos Pro Small Pen Pad
    Wacom Expresskeys Remote
    Loopdeck+ Graphics Controller
    Shuttle Pro v2 Control Pad
    10TB NAS
If you want to have real protection(firewall in this case) you need to use a paid software, not the free ones or worse Windows firewall.

I don't agree with anything in this statement. I think there are plenty of free alternatives that can do just fine. A lot really depends upon what you do on your computer and the types of sites that you are likely to visit.
 

My Computer

Computer Manufacturer/Model Number
Self-Built in July 2009
OS
Windows 7 Ultimate x64
CPU
Intel Q9550 2.83Ghz OC'd to 3.40Ghz
Motherboard
Gigabyte GA-EP45-UD3R rev. 1.1, F12 BIOS
Memory
8GB G.Skill PI DDR2-800, 4-4-4-12 timings
Graphics Card(s)
EVGA 1280MB Nvidia GeForce GTX570
Sound Card
Realtek ALC899A 8 channel onboard audio
Monitor(s) Displays
23" Acer x233H
Screen Resolution
1920x1080
Hard Drives
Intel X25-M 80GB Gen 2 SSD
Western Digital 1TB Caviar Black, 32MB cache. WD1001FALS
PSU
Corsair 620HX modular
Case
Antec P182
Cooling
stock
Keyboard
ABS M1 Mechanical
Mouse
Logitech G9 Laser Mouse
Internet Speed
15/2 cable modem
Other Info
Windows and Linux enthusiast. Logitech G35 Headset.
I use Comodo Firewall and have just retested this new install (Official RTM) 100% pass In and Out with comments such as this ...

I do get one fail that i expect I have the Ping port open at the moment on the Router

The price for this type of security FREE :D

AntiVirus and SSL Certificates - Internet Security Software | Comodo if you want to try it yourself

I use MSE, my computer had the same results AND passed other things on that site. I have yet to fail anything on it.
 

My Computer

Computer Manufacturer/Model Number
Custom | Whitebox
OS
Windows 7 Ultimate, OS X 10.7, Ubuntu 11.04
CPU
Intel E6750 @ 3.80GHz
Motherboard
Gigabyte GA-EP45-UD3L (Revision 1.1)
Memory
2x2GB & 2x1GB (6GB) OCZ Reaper 1066MHz @ 1080MHz
Graphics Card(s)
EVGA nVidia GTX 260 896mb (216 Core) FTW Edition
Sound Card
Realtek ALC888
Monitor(s) Displays
21" VIZIO TV
Screen Resolution
1680x1050 @ 60Hz
Hard Drives
Western Digital WD6401AALS - 640GB
Hitachi HDP725016GLA380 - 160GB
PSU
Corsair 750W
Case
NZXT Nemesis Elite
Cooling
Thermaltake SpinQ
Keyboard
Logitech Wireless S520
Mouse
Logitech Wireless S520 - Microsoft Wireless Arc Mouse
Internet Speed
Download: 20mbps, Upload: 3mbps
I use MSE, my computer had the same results AND passed other things on that site. I have yet to fail anything on it.

This is interesting. I had latest version of MSE installed and running when I failed with Port 23 open. I wonder if its your router that blocks the port. I'm currently in a hotel using their wireless when I get the port 23 open on grc. I'm trying a couple of other AV/FW combos now. Results soon...
 

My Computer

Computer Manufacturer/Model Number
Dell / Studio xps
OS
Windows7 x64 7600 16385
CPU
Intel I7 920
Motherboard
Dell
Memory
6GB DDR3
Graphics Card(s)
ATI Radeon HD4350
Sound Card
Integrated 7.1 channel
Hard Drives
Hitachi HDT721064SLA360 (596 GB)
Keyboard
Logitech EX110
Mouse
Logitech LX8
This is interesting. I had latest version of MSE installed and running when I failed with Port 23 open. I wonder if its your router that blocks the port. I'm currently in a hotel using their wireless when I get the port 23 open on grc. I'm trying a couple of other AV/FW combos now. Results soon...

The router is unsecured, I currently have a 1 bar signal @ 11mbps, its a WRT54GS Linksys Router.

=)
 

My Computer

Computer Manufacturer/Model Number
Custom | Whitebox
OS
Windows 7 Ultimate, OS X 10.7, Ubuntu 11.04
CPU
Intel E6750 @ 3.80GHz
Motherboard
Gigabyte GA-EP45-UD3L (Revision 1.1)
Memory
2x2GB & 2x1GB (6GB) OCZ Reaper 1066MHz @ 1080MHz
Graphics Card(s)
EVGA nVidia GTX 260 896mb (216 Core) FTW Edition
Sound Card
Realtek ALC888
Monitor(s) Displays
21" VIZIO TV
Screen Resolution
1680x1050 @ 60Hz
Hard Drives
Western Digital WD6401AALS - 640GB
Hitachi HDP725016GLA380 - 160GB
PSU
Corsair 750W
Case
NZXT Nemesis Elite
Cooling
Thermaltake SpinQ
Keyboard
Logitech Wireless S520
Mouse
Logitech Wireless S520 - Microsoft Wireless Arc Mouse
Internet Speed
Download: 20mbps, Upload: 3mbps
... A lot really depends upon what you do on your computer and the types of sites that you are likely to visit.

That's right! I go to very bad sites.

The only free one I trust is Comodo Firewall. But atm I use KIS 2010.

As I sad free is not always a good option.

If you need a good one check this tests on firewall:

Results and comments - www.matousec.com
 

My Computer

Computer Manufacturer/Model Number
MasterB/Custom
OS
Windows 7 Professional x64
CPU
QuadCore AMD Phenom II X4 Black Edition 955 3.2 GHz
Motherboard
Asus M4A785TD-V Evo
Memory
8 GB Crucial DDR3
Graphics Card(s)
SAPPHIRE Radeon HD 4890 1GB HDMI New Edition
Sound Card
VIA VT1708S HD Audio 7.1 onboard/ ATI HDMI video card
Monitor(s) Displays
Acer H233H 23'' LCD HDMI
Screen Resolution
1920x1080
Hard Drives
1x 500GB and 1x 1TB 7200RPM 32MB Cache WD Caviar Black
PSU
CORSAIR CMPSU-620HX 620W
Case
COOLER MASTER Storm Scout SGC-2000
Cooling
2x 140mm and 1x 120mm case fans, Stock CPU fan
Keyboard
Logitech MX 3200
Mouse
Logitech MX 3200
Internet Speed
15 Mbps
Other Info
My first build!
Hey, I just ran that test Yesterday :D . Im used MSE and it passed. Then tried LeakTest and it said my Firewall has been penetrated without my knowledge. So seems like my Windows Firewall is not working properly.

Then I installed Comodo, and now it says im fine. Its a bit anoying when a program runs at first as many popups come but its better than getting my wall penetrated :p

Now Im getting these with MSE and Comodo.
 

Attachments

  • yu.jpg
    yu.jpg
    39.4 KB · Views: 12

My Computer

Computer Manufacturer/Model Number
Intel
OS
Windows 7 Professional, Windows XP
CPU
Intel Dual Core
Motherboard
Intel D945GCNL
Memory
2GB
Graphics Card(s)
Intel 82945G Express
Monitor(s) Displays
HP Pavilion 1859m
Screen Resolution
1366x768
Hard Drives
Samsung 250GB SATA
Maxtor 80GB SATA
Case
High Tower
Cooling
Air
Keyboard
Delux
Mouse
A4Tech
Internet Speed
512kbps downlink and 128kbps uplink :(
Maybe I'm chasing a non-existant problem...

I just did the port test using PC Flank. When it runs, it tells me:
mrk10.gif
IP Address test


The test has determined your IP address to be:
24.218.10.214

But here is what my ipconfig reports:

Wireless LAN adapter Wireless Network Connection:

Connection-specific DNS Suffix . :
Link-local IPv6 Address . . . . . : fe80::3b:db7c:a6e1:fa83%12
IPv4 Address. . . . . . . . . . . : 192.168.4.249
Subnet Mask . . . . . . . . . . . : 255.255.255.255
Default Gateway . . . . . . . . . : 192.168.4.1

So I believe that these test are only reporting the port status of the router that this hotel is using and not my actual status. I will check when I connect to a different hotels wireless later today.
 

My Computer

Computer Manufacturer/Model Number
Dell / Studio xps
OS
Windows7 x64 7600 16385
CPU
Intel I7 920
Motherboard
Dell
Memory
6GB DDR3
Graphics Card(s)
ATI Radeon HD4350
Sound Card
Integrated 7.1 channel
Hard Drives
Hitachi HDT721064SLA360 (596 GB)
Keyboard
Logitech EX110
Mouse
Logitech LX8
That's right! I go to very bad sites.

The only free one I trust is Comodo Firewall. But atm I use KIS 2010.

As I sad free is not always a good option.

If you need a good one check this tests on firewall:

Results and comments - www.matousec.com
Hi,

first of all I have to clarify one thing - Matousec doesn't test ONLY firewalls.
His test testing mainly HIPS protection or other kernel vulnerable parts of OS, eg. BsodHook or Security Software Testing Suite package (SSTS)

So please do not recommend to others firewall reference only on Matousec test methodology, because it is not Firewall test but "Proactive Security Challenge" and in this test eg. very good firewall (Look'n'Stop is on the end of the list, because this is pure firewall without HIPS module)

Cheers,
Creer
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self Built
OS
Windows 7 Home Premium x32 SP1
CPU
x2 2.6 GHz
Motherboard
Asus
Memory
A-Data 2GB DDR2-800
Graphics Card(s)
ATI X1250
Sound Card
SB 5.1 Live!
Hard Drives
WD and Seagate FAP
PSU
Tagan TG-480-U01
Keyboard
BTC 6300
Mouse
Logitech VX Nano
Antivirus
None
Back
Top